Job description
1. Job objective: Carry out activities related to building and implementing data security mechanisms, ensuring safety, compliance and data protection throughout the lifecycle, in accordance with legal regulations and international standards (Decree 13/2023/NĐ-CP, ISO 27001, GDPR...).
Coordinate with Data Governance, Information Security, Risk and Compliance units to effectively implement data security policies, procedures, standards and tools within the assigned scope, contributing to ensuring that enterprise-wide data governance operations are run continuously, safely and efficiently.
2. Main duties/responsibilities:
i. Design and implement a unified Data Security Framework across the organization.
ii. Manage data security activities according to data lifecycle:
• Data Classification & Tagging
• Encryption & Key Management
• Masking, Tokenization
• Access Control, IAM, ABAC/RBAC
• DLP, Monitoring, Incident Response
iii. Build and update data security policies, procedures and standards, coordinate closely with IT Security, Data Governance, Risk Management and Compliance units.
iv. Participate in implementing, assessing and controlling compliance with regulations on personal data protection and information security.
v. Train and raise awareness about data security for business and technical units.
vi. Build periodic reports on data security status, early warning of risks and improvement plans for the Leadership Board."
Requirements
i. Education & experience
• Bachelor's degree in IT, Information Security, Data Science, or equivalent.
• Minimum 5 years of experience in: Information Security, Data Governance, IT Risk, or Cloud Security.
• Understanding of data security standards and control frameworks: ISO 27001/27701, NIST, GDPR, PCI-DSS, Decree 13/2023/NĐ-CP.
• Experience implementing or managing data security tools: DLP, Data Masking, Encryption, IAM, SIEM, Key Vault, Cloud Security Tools.
ii. Skills
• Ability to design and implement data security mechanisms at organizational level.
• Data-centric security mindset, balancing security and business efficiency.
• Cross-functional coordination skills, good communication, and quick decision-making in incident situations.
• Priority given to international certifications: CISSP, CISM, CDPSE, ISO 27001 LA/LI, CDMP Practitioner, CISA.
• SQL, BI tools
BENEFITS:
- Personal and family health insurance
- Travel
- Fitness Center (Yoga, GYM,...)
- Support for sports training, transportation, childcare/kindergarten, and phone allowances
- Regular health check-ups
- 13th month salary
- Birthday leave
- Holiday bonuses (Tet, National Day, 30/4 - 1/5, Bank Anniversary,...)
- Performance and achievement bonuses
- Preferential loans
MB Bank requires candidates to provide the following detailed information:
- Personal information: Full name, Date of birth, Gender
- Phone number and email contact
- Education level, School graduated from
- Work experience
- 3 - 5 outstanding skills
Why should you ensure complete information when applying?
- Your profile will be evaluated quickly.
- For profiles with complete information and suitable recruitment criteria, MB Bank will proactively contact you for an interview at the earliest time.
- Candidates please check email and phone regularly to not miss interview appointments.
Update the latest information about programs organized by MB at MB Careers Recruitment Page
And the following Fanpages:
• MB Careers
• Ai Yêu Miền Bắc hơn MBers?
• Ai Yêu Miền Trung hơn MBers?
• Ai Yêu Miền Nam hơn MBers